Unrated severityNVD Advisory· Published Oct 30, 2005· Updated Apr 16, 2026
CVE-2005-3363
CVE-2005-3363
Description
SQL injection vulnerability in Saphp Lesson, possibly saphp Lesson1.1 and saphpLesson2.0, allows remote attackers to execute arbitrary SQL commands via the forumid parameter in (1) showcat.php and (2) add.php.
Affected products
2cpe:2.3:a:saphp:saphplesson:1.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:saphp:saphplesson:1.1:*:*:*:*:*:*:*
- cpe:2.3:a:saphp:saphplesson:2.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
13- secunia.com/advisories/17308/nvdVendor Advisory
- marc.infonvd
- securityreason.com/securityalert/111nvd
- www.attrition.org/pipermail/vim/2005-October/000313.htmlnvd
- www.osvdb.org/20289nvd
- www.osvdb.org/20290nvd
- www.securityfocus.com/archive/1/430906/30/5610/threadednvd
- www.securityfocus.com/archive/1/440120/100/0/threadednvd
- www.securityfocus.com/archive/1/472799/100/0/threadednvd
- www.securityfocus.com/bid/15185nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/22861nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/27746nvd
- www.exploit-db.com/exploits/1530nvd
News mentions
0No linked articles in our index yet.